VYPR

Wcn3999 Firmware

by Qualcomm

CVEs (173)

  • CVE-2020-11234HigApr 7, 2021
    risk 0.55cvss 8.4epss 0.00

    When sending a socket event message to a user application, invalid information will be passed if socket is freed by other thread resulting in a Use After Free condition in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity,…

  • CVE-2023-28585HigDec 5, 2023
    risk 0.53cvss 8.2epss 0.00

    Memory corruption while loading an ELF segment in TEE Kernel.

  • CVE-2023-21625HigAug 8, 2023
    risk 0.53cvss 8.2epss 0.00

    Information disclosure in Network Services due to buffer over-read while the device receives DNS response.

  • CVE-2022-33291HigApr 13, 2023
    risk 0.53cvss 8.2epss 0.00

    Information disclosure in Modem due to buffer over-read while receiving a IP header with malformed length.

  • CVE-2022-33287HigApr 13, 2023
    risk 0.53cvss 8.2epss 0.00

    Information disclosure in Modem due to buffer over-read while getting length of Unfragmented headers in an IPv6 packet.

  • CVE-2022-33235HigDec 13, 2022
    risk 0.53cvss 8.2epss 0.00

    Information disclosure due to buffer over-read in WLAN firmware while parsing security context info attributes. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT,…

  • CVE-2021-30349HigJun 14, 2022
    risk 0.53cvss 8.2epss 0.00

    Improper access control sequence for AC database after memory allocation can lead to possible memory corruption in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Voice & Music, Snapdragon Wearables,…

  • CVE-2021-35117HigApr 1, 2022
    risk 0.53cvss 8.2epss 0.01

    An Out of Bounds read may potentially occur while processing an IBSS beacon, in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music

  • CVE-2021-1906MedKEVMay 7, 2021
    risk 0.52cvss 6.2epss 0.01

    Improper handling of address deregistration on failure can lead to new GPU address allocation failure. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon…

  • CVE-2025-27054HigOct 9, 2025
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while processing a malformed license file during reboot.

  • CVE-2025-21481HigSep 24, 2025
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while performing private key encryption in trusted application.

  • CVE-2023-43542HigJun 3, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while copying a keyblob`s material when the key material`s size is not accurately checked.

  • CVE-2023-33110HigJan 2, 2024
    risk 0.51cvss 7.8epss 0.00

    The session index variable in PCM host voice audio driver initialized before PCM open, accessed during event callback from ADSP and reset during PCM close may lead to race condition between event callback - PCM close and reset session index causing memory corruption.

  • CVE-2023-33017HigDec 5, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in Boot while running a ListVars test in UEFI Menu during boot.

  • CVE-2023-28550HigDec 5, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in MPP performance while accessing DSM watermark using external memory address.

  • CVE-2023-28546HigDec 5, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory Corruption in SPS Application while exporting public key in sorter TA.

  • CVE-2023-28565HigSep 5, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in WLAN HAL while handling command streams through WMI interfaces.

  • CVE-2023-28560HigSep 5, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in WLAN HAL while processing devIndex from untrusted WMI payload.

  • CVE-2023-28559HigSep 5, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in WLAN FW while processing command parameters from untrusted WMI payload.

  • CVE-2023-28558HigSep 5, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in WLAN handler while processing PhyID in Tx status handler.

Page 4 of 9